Troubleshooting
This section provides troubleshooting strategies and the solutions for common errors.
Authentication failure
Possible causes
In SAS, with external IDP redirection functionality, if authentication is invalidated and error message is displayed. This is probably because no mapper is added on exernal IDP or the mapper value is incorrect.
Solution
In IDP redirection, after authentication on external IDP, the control redirects to SAS IDP, then claim verification happens.
For claim validation, you need to add mapper on external IDP client. the mapper addition process is unique for every IDP.
To add a new mapper in Keycloak server, go to Client > Client ID > Mappers.